First published: Tue Feb 25 2020(Updated: )
Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime.<br>This asynchronous patch is a security update for the wildfly-security-manager package in Red Hat JBoss Enterprise Application Platform 7.2.<br>Security Fix(es):<br><li> netty: HTTP Request Smuggling due to Transfer-Encoding whitespace mishandling (CVE-2020-7238)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, see the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2020:0606 is classified as important.
To fix RHSA-2020:0606, update your WildFly security manager package to the latest version provided in the advisory.
RHSA-2020:0606 affects Red Hat JBoss Enterprise Application Platform 7.2.
RHSA-2020:0606 addresses a security vulnerability in the wildfly-security-manager package.
There are no specific workarounds recommended for RHSA-2020:0606; the advised action is to apply the security update.